The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to

链接: https://github.com/advisories/GHSA-xr9q-85p6-f6xr

CVSS 评分: 9.8

参考链接:

描述:

The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and write due to the existence of an insufficiently protected remote support functionality in remote_tunnel.php in all versions up to, and including, 3.0.2. This makes it possible for unauthenticated attackers to read from or write to arbitrary files on the affected site’s server which may make the exposure of sensitive information or remote code execution possible.


The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to
http://example.com/2025/07/11/github_1022660513/
作者
lianccc
发布于
2025年7月11日
许可协议